2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-45256 | MEDIUM | 5.5 | 0.6% | Dec 22, 2021 | A Null Pointer Dereference vulnerability existfs in nasm 2.16rc0 via asm/preproc.c. |
| CVE-2021-44733 | HIGH | 7 | 0.7% | Dec 22, 2021 | A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through 5.15.11. This occurs b... |
| CVE-2021-39013 | MEDIUM | 6.5 | 0.8% | Dec 22, 2021 | IBM Cloud Pak for Security (CP4S) 1.7.2.0, 1.7.1.0, and 1.7.0.0 could allow an authenticated user to obtain sensitive in... |
| CVE-2021-45418 | HIGH | 8.8 | 2.1% | Dec 22, 2021 | Certain Starcharge products are vulnerable to Directory Traversal via main.cgi. The affected products include: Nova 360 ... |
| CVE-2021-36750 | HIGH | 8.1 | 13.5% | Dec 22, 2021 | ENC DataVault before 7.2 and VaultAPI v67 mishandle key derivation, making it easier for attackers to determine the pass... |
| CVE-2021-40612 | CRITICAL | 9.8 | 2.0% | Dec 22, 2021 | An issue was discovered in Opmantek Open-AudIT after 3.5.0. Without authentication, a vulnerability in code_igniter/appl... |
| CVE-2021-40836 | MEDIUM | 5.5 | 0.5% | Dec 22, 2021 | A vulnerability affecting F-Secure antivirus engine was discovered whereby scanning MS outlook .pst files can lead to de... |
| CVE-2021-45459 | CRITICAL | 9.8 | 4.1% | Dec 22, 2021 | lib/cmd.js in the node-windows package before 1.0.0-beta.6 for Node.js allows command injection via the PID parameter. |
| CVE-2021-44031 | CRITICAL | 9.8 | 2.1% | Dec 22, 2021 | An issue was discovered in Quest KACE Desktop Authority before 11.2. /dacomponentui/profiles/profileitems/outlooksetting... |
| CVE-2021-44030 | MEDIUM | 6.1 | 4.2% | Dec 22, 2021 | Quest KACE Desktop Authority before 11.2 allows XSS because it does not prevent untrusted HTML from reaching the jQuery.... |
| CVE-2021-44029 | CRITICAL | 9.8 | 0.9% | Dec 22, 2021 | An issue was discovered in Quest KACE Desktop Authority before 11.2. This vulnerability allows attackers to execute remo... |
| CVE-2021-44028 | MEDIUM | 5.5 | 3.0% | Dec 22, 2021 | XXE can occur in Quest KACE Desktop Authority before 11.2 because the log4net configuration file might be controlled by ... |
| CVE-2021-43851 | HIGH | 8.8 | 1.2% | Dec 22, 2021 | Anuko Time Tracker is an open source, web-based time tracking application written in PHP. SQL injection vulnerability ex... |
| CVE-2021-44927 | MEDIUM | 5.5 | 0.7% | Dec 21, 2021 | A null pointer dereference vulnerability exists in gpac 1.1.0 in the gf_sg_vrml_mf_append function, which causes a segme... |
| CVE-2021-44926 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A null pointer dereference vulnerability exists in gpac 1.1.0-DEV in the gf_node_get_tag function, which causes a segmen... |
| CVE-2021-44925 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A null pointer dereference vulnerability exists in gpac 1.1.0 in the gf_svg_get_attribute_name function, which causes a ... |
| CVE-2021-44924 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | An infinite loop vulnerability exists in gpac 1.1.0 in the gf_log function, which causes a Denial of Service. |
| CVE-2021-44923 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A null pointer dereference vulnerability exists in gpac 1.1.0 in the gf_dump_vrml_dyn_field.isra function, which causes ... |
| CVE-2021-44922 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A null pointer dereference vulnerability exists in gpac 1.1.0 in the BD_CheckSFTimeOffset function, which causes a segme... |
| CVE-2021-44921 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A null pointer dereference vulnerability exists in gpac 1.1.0 in the gf_isom_parse_movie_boxes_internal function, which ... |
| CVE-2021-44920 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | An invalid memory address dereference vulnerability exists in gpac 1.1.0 in the dump_od_to_saf.isra function, which caus... |
| CVE-2021-44919 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A Null Pointer Dereference vulnerability exists in the gf_sg_vrml_mf_alloc function in gpac 1.1.0-DEV, which causes a se... |
| CVE-2021-44918 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A Null Pointer Dereference vulnerability exists in gpac 1.1.0 in the gf_node_get_field function, which can cause a segme... |
| CVE-2021-44917 | MEDIUM | 5.5 | 0.7% | Dec 21, 2021 | A Divide by Zero vulnerability exists in gnuplot 5.4 in the boundary3d function in graph3d.c, which could cause a Arithm... |
| CVE-2021-45297 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | An infinite loop vulnerability exists in Gpac 1.0.1 in gf_get_bit_size. |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now